Known Vulnerabilities for Connect by Garmin
Listed below are 1 of the newest known vulnerabilities associated with "Connect" by "Garmin".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-86124 json | AutoAgent contains an unauthenticated remote code execution vulnerability in the TCP server that binds to all interfaces and ... | Not Provided | 2026-09-05 | 2026-09-05 |
| CVE-2026-86123 json | SQL Chat contains four unauthenticated API endpoints that accept client-supplied database connection parameters and execute a... | Not Provided | 2026-09-05 | 2026-09-08 |
| CVE-2026-85424 json | MOOS core-moos through 10.4.0 lacks authentication in the wire protocol, allowing unauthenticated clients to connect with ful... | Not Provided | 2026-09-03 | 2026-09-05 |
| CVE-2026-84961 json | undici's BalancedPool constructor passes its entire options object through an internal deep-clone that serializes and reparse... | Not Provided | 2026-09-04 | 2026-09-04 |
| CVE-2026-84700 json | PikiwiDB (Pika) v3.5.7 exposes an internal protobuf replication server on a port derived from the client port plus 2000 (e.g.... | Not Provided | 2026-09-02 | 2026-09-02 |
| CVE-2026-84664 json | Jenkins GitLab Plugin 1.9.16 and earlier allows overwriting the global GitLab connection configuration through Stapler data b... | Not Provided | 2026-09-02 | 2026-09-02 |
| CVE-2026-84662 json | Jenkins LDAP Plugin 807.809.vd3a_4e5e4ec98 and earlier allows connecting to a specified URL through Stapler data binding, all... | Not Provided | 2026-09-02 | 2026-09-02 |
| CVE-2026-84207 json | Heym before 0.0.98 fails to apply SSRF egress guards to WebSocket Send and WebSocket Trigger nodes, allowing authenticated us... | Not Provided | 2026-09-01 | 2026-09-01 |
| CVE-2026-82757 json | Server-Side Request Forgery (SSRF) vulnerability in ash-project ash_authentication_oauth2_server allows an attacker who contr... | Not Provided | 2026-09-07 | 2026-09-08 |
| CVE-2026-82234 json | SiYuan versions before v3.8.1 contain a server-side request forgery vulnerability in the http_request and web_fetch agent too... | Not Provided | 2026-08-28 | 2026-08-28 |